Senior Cloud Security Engineer

4 weeks ago


Brossard QC, Canada BMO Full time

We are seeking an enthusiastic and passionate professional for a Senior Cloud Security wants to design and implement security solutions for systems and services in AWS and Azure. We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in the operational and DevOps (CI/CD) practices with a focus on automation. We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting and maintaining the security of data, systems and networks

You are a leader with a strong technical background. You're have demonstrated strength at developing and implementing secure cloud architectures using a risk based cyber security & data privacy strategy, defining security patterns, roadmap and operating model that leverages collaboration, facilitating industry standard information security governance, advising senior leadership on cybersecurity & privacy risks and threats and investment strategies, and documenting appropriate policies and procedures to manage information security risks.

As a qualified candidate, you will be part of the team driving BMO’s Cloud implementation. As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences you will inject new knowledge and skills into an already high performing team thus excelling our efforts to new heights.

Your Responsibilities

  • Assess, design, implement, automate, and document security solutions, controls and processes for Amazon Web Service (AWS) and MS Azure cloud platforms;
  • Develop and maintain Security patterns for Cloud Platforms and Services; Assess all cloud patterns to ensure adherence to best security practices and controls
  • Design and implement DevOps processes, tools, and re-usable templates to incorporate security into application and infrastructure design patterns and the building of security controls into the CI/CD process.
  • Build and deliver policies as code, automating security controls and best practices.
  • Review and approve codes and changes with security implications (e.g. IAM Roles and Policies, Security Groups …etc.)
  • Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of our cloud engineering stack, services and data flow
  • Lead focused and continuous cyber security risk assessments of new and existing technologies to identify risks, and appropriate controls that balance security and operability
  • Provide effective and pragmatic cyber security guidance up-front in major technology projects, to enable the business to innovate securely
  • Assist in investigation and remediation of security incidents and issues
  • Be the cloud security subject matter expert for our Cloud Engineering group and its partners in any IaaS/ PaaS and SaaS implementations.
  • Conduct risk assessments to identify potential security vulnerabilities in cloud environments and formulate strategies to mitigate these risks
  • Ensure that cloud security practices align with relevant industry standards and compliance requirements, such as CIS, NIST etc.
  • Work closely with Information Security, product and software development teams to assess cybersecurity risk, cloud controls, and recommend solution and remediation in the cloud environment

Your Mindset

  • You are a self-starter, driven and can handle multiple projects and priorities.
  • You are passionate about driving the DevOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with a spectrum of latest tools and technologies to drive forward Infrastructure-as-Code and Infrastructure-as-a-Service.
  • You are actively looking to improve the solutions you implement, understand the efficacy of collaboration and reaching out across functional borders and are keen to work in a team of CI/CD and Infrastructure specialists.
  • As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences you will inject new knowledge and skills into an already high performing team thus excelling our efforts to new heights.

Required Core Skills:

  • A university degree in Engineering, Computer Science, or Information Technology.
  • 5-8 years of experience developing and fielding security architectures and/or engineering
  • Security certification such as CISSP or CCSP or CCSK or any Cloud Certified Professional or Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified Solutions Expert).
  • Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO27001, ISO 27017 and NIST
  • Demonstrated Knowledge of cloud architecture, cloud operations, cloud-based identity access and management, security, automation and orchestration.
  • Clear understanding of security protocols and standards and experience with software and security architectures
  • Extensive experience with Cloud native Security Solutions
  • Firm grasp of networking protocols and operations. Comfortable with low level packet sniffing, working knowledge on Kali, Wireshark, Burpsuite, Metasploit, nmap, fiddler, sqlmap, nessus. Knowledge on network attacks, detections, and defenses
  • knowledge of theoretical and applied cryptography, key management, and a strong understanding of cryptography algorithms such as RSA, AES, SSL vs TLS, PKI, etc
  • Knowledge of Identity and Access Management concepts and technologies to secure production and corporate access, such as SSO, SAML Federated Identity, RBAC, authentication & authorization solutions
  • Experience with scripting (Python, Perl, Bash, PowerShell) and API integrations
  • Demonstrable internal and external relationship building skills and the ability to clearly articulate complex security concepts that influence decision making within a diverse corporate culture.
  • Ability to lead an in-depth client meeting/workshop across a broad range of topics including discovery, cloud compliance, and security
  • Strong programming skill with experience in API and Webhook development using Python, Node.js, Ruby, PowerShell and Shell Scripting languages.

Other Skills:

  • Strong Interpersonal, communication and leadership Skills
  • A critical thinker with strong research, analytics and problem solving skills
  • Self-motivated with a positive attitude and an ability to work independently and or in a team
  • Ability to communicate across business units and the ability to interface with and communicate complex technical concepts to a broad range of internal and external stakeholders
  • Time management skills with the ability to manage multiple streams and lead less experienced architects

We’re here to help

At BMO we are driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on us to create lasting, positive change for our customers, our communities and our people. By working together, innovating and pushing boundaries, we transform lives and businesses, and power economic growth around the world.

As a member of the BMO team you are valued, respected and heard, and you have more ways to grow and make an impact. We strive to help you make an impact from day one – for yourself and our customers. We’ll support you with the tools and resources you need to reach new milestones, as you help our customers reach theirs. From in-depth training and coaching, to manager support and network-building opportunities, we’ll help you gain valuable experience, and broaden your skillset.

BMO is committed to an inclusive, equitable and accessible workplace. By learning from each other’s differences, we gain strength through our people and our perspectives. Accommodations are available on request for candidates taking part in all aspects of the selection process. To request accommodation, please contact your recruiter.

Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to BMO, directly or indirectly, will be considered BMO property. BMO will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid, written and fully executed agency agreement contract for service to submit resumes.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Brossard, QC, Canada Clarivate Full time

    Clarivate Clarivate is a global leader in providing trusted insights and analytics. Our vision is to improve the way the world creates, protects, and advances innovation. View company page This role is open for both new grads and senior candidates. As a Cloud Security Developer, you will be leading, designing, and developing innovative solutions...


  • Brossard, Canada Clarivate Full time

    Clarivate Clarivate is a global leader in providing trusted insights and analytics. Our vision is to improve the way the world creates, protects, and advances innovation. View company page This role is open for both new grads and senior candidates. As a Cloud Security Developer, you will be leading, designing, and developing innovative solutions around...


  • Brossard, Canada Clarivate Full time

    Clarivate Clarivate is a global leader in providing trusted insights and analytics. Our vision is to improve the way the world creates, protects, and advances innovation. View company page This role is open for both new grads and senior candidates. As a Cloud Security Developer, you will be leading, designing, and developing innovative solutions around...


  • Brossard, Canada Clarivate Full time

    Clarivate Clarivate is a global leader in providing trusted insights and analytics. Our vision is to improve the way the world creates, protects, and advances innovation. View company page This role is open for both new grads and senior candidates. As a Cloud Security Developer, you will be leading, designing, and developing innovative solutions around...


  • Brossard, Canada Vanguard Full time

    Build mission critical application for the company with the latest technology, deploy enterprise applications development in both monolith and cloud -based platforms part of Software Development Life Cycle (SDLC) day-to-day activities using front-end, back-end and middleware technologies; create automation testing, manual testing, bug bashing the developed...


  • Brossard, Canada Telstra Full time

    Telstra Join Australia's largest mobile network, view our plans for NBN broadband internet, mobile phones, 5G & on demand streaming services. View company page Who We AreWe're Australia's leading telecommunications and technology company. With a global presence in more than 22 countries, we have a strong global footprint. Our purpose is to build a...


  • Brossard, Canada Telstra Full time

    Telstra Join Australia's largest mobile network, view our plans for NBN broadband internet, mobile phones, 5G & on demand streaming services. View company page Who We AreWe're Australia's leading telecommunications and technology company. With a global presence in more than 22 countries, we have a strong global footprint. Our purpose is to build a...

  • Cloud Architect

    5 hours ago


    Montréal, QC, Canada Pow.re Full time

    Role Description:The Cloud Architect will play a crucial role in transitioning the company’s software product from an on-premises solution to a cloud-based SaaS model. This individual will be responsible for designing, deploying, and managing cloud infrastructure, including aspects related to compute, storage, networks, and security. They will ensure that...

  • Cloud Architect

    3 weeks ago


    Montréal, QC, Canada Pow.re Full time

    Role Description: The Cloud Architect will play a crucial role in transitioning the company’s software product from an on-premises solution to a cloud-based SaaS model. This individual will be responsible for designing, deploying, and managing cloud infrastructure, including aspects related to compute, storage, networks, and security. They will ensure...


  • Montréal, QC, Canada Pow.re Full time

    Role Description: The Cloud Architect will play a crucial role in transitioning the company’s software product from an on-premises solution to a cloud-based SaaS model. This individual will be responsible for designing, deploying, and managing cloud infrastructure, including aspects related to compute, storage, networks, and security. They will ensure...


  • Montréal, QC, Canada Experience AI Solutions Full time

    Senior Infrastructure Engineer Type of employment: Contract Language skills: Strong English communication skills are required. As a Senior Infrastructure Engineer, you will join our team with proficiency in Linux Operating Systems, Azure Infrastructure, and AWS Cloud Management. You will have a proven track record of designing, implementing, and...


  • Brossard, Canada Teck Resources Full time

    Teck Resources Teck is Canada's largest diversified mining company and is committed to responsible development. It has major business units focused on copper, metallurgical coal, zinc, gold and energy. Shares are listed on the TSX under the symbols TECK.A and... View company page As Canada’s largest diversified mining company, Teck is committed to...


  • Brossard, Canada Teck Resources Full time

    Teck Resources Teck is Canada's largest diversified mining company and is committed to responsible development. It has major business units focused on copper, metallurgical coal, zinc, gold and energy. Shares are listed on the TSX under the symbols TECK.A and... View company page As Canada’s largest diversified mining company, Teck is committed to...


  • Brossard, Canada Teck Resources Full time

    Teck Resources Teck is Canada's largest diversified mining company and is committed to responsible development. It has major business units focused on copper, metallurgical coal, zinc, gold and energy. Shares are listed on the TSX under the symbols TECK.A and... View company page As Canada’s largest diversified mining company, Teck is committed to...


  • Montréal, QC, Canada CGI Full time

    Spécialiste des Systèmes CloudNous recherchons un spécialiste cloud senior expérimenté pour rejoindre notre équipe dynamique. En tant que membre clé de notre équipe des opérations cloud, vous serez responsable de la conception, de la mise en œuvre et de la maintenance de l'infrastructure cloud de nos clients. Votre expertise garantira la...


  • Brossard, Canada Long View Full time

    Long View. A career that helps you get more out of life. A Long View career helps you get more out of life. We don’t just say it, we prove it. Every day. We’re proud of our reputation as one of North America’s most dynamic IT providers — and we’re even prouder of our culture that allows our people to live life to its fullest. At Long View, we...